yes i do know why should you use it and i know that it is harder to detect, but ask yourself... why would you try to use all the different stealth scans, why would you try to increment packets w/ delay, why would you use it if it's not as reliable as connect scan... if all you can do is go to nearest library or cyber-cafe and run full scan from there and noone will will be ever able to know your real IP or identity ...

seriously... what are the uses? one that i can think of is if the IDS is set up to drop packets or fake services when it detects a port scan, but if they already went to all the trouble to set that up, they sould be able to detect stealth/fin/.... scans too.

ideas..?